Skip to content
Klarnode
DE EN
Get in touch
Zero Trust & SASE: security consolidated. — case study
All case studies
Cloud & Security · Beverages

Zero Trust & SASE: security consolidated.

250 ms → 30–40 ms latency
Beverages Cloud & Security Cloudflare WAFDDoSCloudflare One (ZTNA/SASE)Magic WANSecure Web Gateway
30–40 ms
Latency (from 250 ms)
~1M
Attacks blocked/month
3,000
ZTNA users
100+
Protected apps
Challenge

A global beverage group ran high-traffic digital platforms on a complex legacy network infrastructure with MPLS circuits and regional VPN solutions. Latency of 250 ms slowed field-sales operations and impaired business continuity. Modern attack vectors — from DDoS to bot attacks to targeted exploits — demanded significantly stronger application protection that w achievable with the fragmented regional solutions.

Approach

We consolidated application security, user access, and cloud networking onto a single connectivity cloud (Cloudflare) — replacing fragmented regional solutions. VPN infrastructure w with Zero Trust Network Access (ZTNA). MPLS circuits were replaced by WAN-as-a-service (Magic WAN), and all public applications received unified WAF and DDoS protection.

Delivered

WAF and DDoS protection for over 100 public applications across four countries. Full VPN-to-Zero-Trust-Access (ZTNA) migration for 3,000 users. MPLS replaced with WAN-as-a-service (Magic WAN) for all locations. Secure Web Gateway for controlled internet access. Rapid, hardware-free site onboarding.

Outcome

Latency cut from 250 ms to 30–40 ms — noticeably faster field sales. Approximately 1 million malicious requests blocked per month. New sites go online in hours, not weeks. One central security and network control plane replaces fragmented regional solutions.

Solution Modules

The key building blocks of this solution at a glance.

01

WAF & DDoS

Unified application protection for 100+ public apps across four countries with automatic threat detection.

02

Zero Trust Access (ZTNA)

Replacement of all VPN connections with identity-based, device-aware Zero Trust for 3,000 users.

03

Magic WAN

WAN-as-a-service replaces MPLS circuits — new sites go online without hardware in hours.

04

Secure Web Gateway

Controlled internet access with content filtering, malware protection, and policy enforcement.

Key Highlights
  • Latency reduced from 250 ms to 30–40 ms
  • Approximately 1 million malicious requests blocked per month
  • Full VPN-to-ZTNA migration for 3,000 users
  • MPLS replaced by WAN-as-a-service
  • Site onboarding in hours instead of weeks
Delivered by our nearshore delivery partner
More case studies

Have a similar project? Let's talk.

Get in touch